Critical Flaws Discovered in Azure App That Microsoft Secretly Installs on Linux VMsThe Hacker News·Sep 17, 19:17 UTC · Sep 17, 2021Exploit / PoCCVE-2021-38647CVE-2021-38648CVE-2021-38645+1 CVEs60
ZEDEDA integrates with Microsoft Azure IoT to provide full lifecycle management capabilitiesHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2021Exploit / PoC160
A flaw in Microsoft Azure App Service exposes customer source codeSecurity Affairs·Dec 23, 05:36 UTC · Dec 23, 2021Exploit / PoC in the wild160
Avnet advances IoT security with Azure Sphere Starter KitHelp Net Security·Jan 9, 00:00 UTC · Jan 9, 2019Exploit / PoC60
Finding Azurescape – Cross-Account Container Takeover in Azure Container InstancesPalo Alto Unit 42·Jun 6, 01:32 UTC · Jun 6, 2024Exploit / PoC in the wildCVE-2019-5736CVE-2018-1002102160
Check Point CloudGuard secures Microsoft Azure Virtual WANHelp Net Security·May 19, 00:00 UTC · May 19, 2023Exploit / PoC60
ChaosDB, a Critical Cosmos DB flaw affected thousands of Microsoft Azure CustomersSecurity Affairs·Aug 27, 17:36 UTC · Aug 27, 2021Exploit / PoC60
New Docker Container Escape Bug Affects Microsoft Azure FunctionsThe Hacker News·Jan 27, 15:59 UTC · Jan 27, 2021Exploit / PoC160
Microsoft Bug Allowed Hackers to Breach Over Two Dozen Organizations via Forged Azure AD TokensThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2023Exploit / PoC in the wild60
Microsoft fixed Azure AD bug that led to Bing.com results manipulation and account takeoverSecurity Affairs·Apr 3, 11:32 UTC · Apr 3, 2023Exploit / PoC in the wild160
Critical Cisco ISE Auth Bypass Flaw Impacts Cloud Deployments on AWS, Azure, and OCIThe Hacker News·Jun 5, 05:37 UTC · Jun 5, 2025Exploit / PoC in the wildCVE-2025-2028660
Critical flaw in Cisco ISE impacts cloud deployments on AWS, Microsoft Azure, and Oracle Cloud InfrastructureSecurity Affairs·Jun 5, 08:31 UTC · Jun 5, 2025Exploit / PoC in the wildCVE-2025-2028660
Microsoft: Solorigate attackers grabbed Azure, Intune, Exchange component source codeHelp Net Security·Feb 24, 10:30 UTC · Feb 24, 2021Exploit / PoC60
Microsoft patches actively exploited MSHTML zero-day RCE (CVE-2021-40444)Help Net Security·Sep 17, 09:50 UTC · Sep 17, 2021Exploit / PoC in the wildCVE-2021-40444CVE-2021-36965CVE-2021-38647+10 CVEs60
Friday Squid Blogging: New Tool for Grabbing Squid and other Fragile Sea CreaturesSchneier on Security·Jan 29, 08:02 UTC · Jan 29, 2020Exploit / PoC160
Independent tests show why orgs should use thirdCyberScoop·Apr 2, 14:35 UTC · Apr 2, 2025Exploit / PoC60
Don't forget to pack security for the journey to the cloudHelp Net Security·Mar 29, 00:00 UTC · Mar 29, 2017Exploit / PoC60
Microsoft IDs developers behind alleged generative AI hacking-forCyberScoop·Feb 27, 18:30 UTC · Feb 27, 2025Exploit / PoC in the wild160
Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039)Help Net Security·Nov 26, 13:25 UTC · Nov 26, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-43639+3 CVEs60
Microsoft patches two actively exploited zero-days (CVE-2024-29988, CVE-2024-26234)Help Net Security·Apr 9, 00:00 UTC · Apr 9, 2024Exploit / PoC in the wildCVE-2024-29988CVE-2024-26234CVE-2024-21412+9 CVEs60
January 2021 Patch Tuesday: Microsoft plugs Defender zero-day RCEHelp Net Security·Nov 14, 08:33 UTC · Nov 14, 2023Exploit / PoC in the wildCVE-2021-1647CVE-2021-1648CVE-2021-1658+8 CVEs60
Microsoft fixed a flaw in Power Platform after being criticizedSecurity Affairs·Aug 6, 15:10 UTC · Aug 6, 2023Exploit / PoC in the wild60
Chinese hackers forged authentication tokens to breach government emailsHelp Net Security·Jul 14, 19:08 UTC · Jul 14, 2023Exploit / PoC in the wild60
Microsoft patches Windows flaw exploited in the wild (CVE-2022-41033)Help Net Security·Nov 8, 17:57 UTC · Nov 8, 2022Exploit / PoC in the wildCVE-2022-41033CVE-2022-41040CVE-2022-41082+6 CVEs60
Microsoft alerts CrowdStrike of hackers' attempted breakCyberScoop·Dec 24, 20:30 UTC · Dec 24, 2020Exploit / PoC in the wild60
From summer camp to grind seasonCisco Talos·Sep 4, 18:02 UTC · Sep 4, 2025Exploit / PoCCVE-2025-5517760
Cybercriminals capitalize on poorly configured cloud environmentsHelp Net Security·Oct 4, 00:00 UTC · Oct 4, 2024Exploit / PoC60
Microsoft fixes exploited zero-day in Windows CSRSS (CVE-2022-22047)Help Net Security·Jul 12, 00:00 UTC · Jul 12, 2022Exploit / PoC in the wildCVE-2022-22047CVE-2022-30216CVE-2022-22029+1 CVEs160
Microsoft Releases Windows Update (Dec 2020) to Fix 58 Security FlawsThe Hacker News·Dec 9, 04:58 UTC · Dec 9, 2020Exploit / PoC in the wildCVE-2020-17132CVE-2020-17118CVE-2020-17121+4 CVEs60
July 2019 Patch Tuesday: Microsoft plugs two actively exploited zero-daysHelp Net Security·Jul 10, 00:00 UTC · Jul 10, 2019Exploit / PoC in the wildCVE-2019-0880CVE-2019-1132CVE-2019-1068+4 CVEs60
Domain fronting has a dwindling futureCyberScoop·Jul 24, 16:56 UTC · Jul 24, 2018Exploit / PoC in the wild60
Researcher Explains Release of Undisclosed ZeroInfosecurity Magazine·Jul 2, 12:51 UTC · Jul 2, 2026Exploit / PoC in the wildCVE-2026-55200CVE-2026-58049CVE-2026-58050+10 CVEs160
U.S. CISA adds Oracle PeopleSoft Enterprise PeopleTools flaw to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 13, 09:19 UTC · Jun 13, 2026Exploit / PoC in the wildCVE-2026-3527360
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026The Hacker News·Jun 11, 20:29 UTC · Jun 11, 2026Exploit / PoC in the wildCVE-2026-3527360
19.6 Billion Files Are Sitting Open on the Internet. No Password RequiredSecurity Affairs·May 28, 07:48 UTC · May 28, 2026Exploit / PoC60
Microsoft Patch Tuesday matches last year’s zero-day high with six actively exploited vulnerabilitiesCyberScoop·Feb 10, 20:50 UTC · Feb 10, 2026Exploit / PoC in the wildCVE-2026-21510CVE-2026-21513CVE-2026-21514+5 CVEs160
⚡ Weekly Recap: Fortinet Exploited, China's AI Hacks, PhaaS Empire Falls & MoreThe Hacker News·Nov 17, 12:37 UTC · Nov 17, 2025Exploit / PoC in the wildCVE-2025-64446CVE-2025-64740CVE-2025-64741+24 CVEs60
Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation ConfirmedThe Hacker News·May 10, 06:43 UTC · May 10, 2025Exploit / PoC in the wildCVE-2025-34028CVE-2025-392860